First published: Wed Jul 31 2024(Updated: )
A vulnerability classified as critical has been found in SourceCodester Lot Reservation Management System 1.0. Affected is an unknown function of the file /admin/index.php?page=manage_lot. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-273150 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Lot Reservation Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-7281 is classified as critical due to its potential for SQL injection attacks.
To fix CVE-2024-7281, ensure input validation and use prepared statements to prevent SQL injection in the affected file /admin/index.php.
CVE-2024-7281 affects version 1.0 of the Oretnom23 Lot Reservation Management System.
CVE-2024-7281 is associated with SQL injection, allowing attackers to manipulate database queries.
Attackers can exploit CVE-2024-7281 by manipulating the 'id' argument in the /admin/index.php?page=manage_lot endpoint.